Plus récents

iPhone apps are now required to ask your permission if they want to track you and your activity across other apps. Big step in the right direction for privacy.

eff.org/deeplinks/2021/04/appl

Once installed, Panda Stealer can collect details like private keys and records of past transactions from its victim's various digital currency wallets, including Dash, Bytecoin, Litecoin, and Ethereum. Not only does it target cryptocurrency wallets, it can steal credentials from other applications such as NordVPN, Telegram, Discord, and Steam. It's also capable of taking screenshots of the infected computer and exfiltrating data from browsers like cookies, passwords, and cards.

trendmicro.com/en_us/research/

🇧🇪 Des attaques informatiques répétées ont empêchées la chambre des représentants belge de mener ses auditions sur le Xinjiang et de débattre aujourd'hui du crime contre l'humanité visant les Ouïghours

lalibre.be/belgique/politique-

Five high-severity security flaws in Dell's firmware update driver are impacting potentially hundreds of millions of Dell desktops, laptops, notebooks and tablets. The bugs have gone undisclosed for 12 years, and could allow the ability to bypass security products, execute code and pivot to other parts of the network for lateral movement.

labs.sentinelone.com/cve-2021-

Remote zero-click security vulnerabilities in an open-source software component ( ConnMan ) used in Tesla automobiles

tbone.sh

Doubledrag, Doubledrop and Doubleback - 3 new malware families used in a widespread phishing campaign entrenched in financial crime. The threat actors behind the malware, described as « experienced and well-resourced,» are being tracked as UNC2529.

fireeye.com/blog/threat-resear

Flashpoint has validated recently leaked documents that indicate Iran's Islamic Revolutionary Guard Corps (IRGC) was operating a state-sponsored ransomware campaign through an Iranian contracting company called Emen Net Pasargard (ENP) (aka « Imannet Pasargad » , « Iliant Gostar Iranian » , « Eeleyanet Gostar Iraniyan ». These 3 documents were originally leaked between March 19 and April 1, 2021, by the Iranian dissident group « Lab Dookhtegan » famous for providing highly reputable intelligence on Iranian state-sponsored cyber programs.

flashpoint-intel.com/blog/seco

Fest­nah­men von mut­maß­lich Ver­ant­wort­li­chen und Mit­glie­dern der kin­derpor­no­gra­fi­schen Dar­knet­platt­form « BOY­STOWN » und Ab­schal­tung die­ser Platt­form

bka.de/DE/Presse/Listenseite_P

Alaska Court System (courts.alaska.gov) temporarily suspends Online Services due to cybersecurity attack - A cyberattack has caused the Alaska Court System (ACS) to disconnect most of its operations from the internet, an act expected to block electronic court filings, disrupt online payments and prevent hearings from taking place by videoconference for several days.

adn.com/alaska-news/crime-cour

A ransomware attack on the Resort Municipality of Whistler (RMOW) could have far-reaching consequences, according to a cyber security expert, but there’s no way of knowing for sure until a full forensic investigation is completed. In a recent post to the dark web, the cyber criminals claim to have accessed about 800 gigabytes of RMOW data.

piquenewsmagazine.com/local-ne

Families of organ, eye and tissue donors are receiving letters this week from the Midwest Transplant Network informing them of a data breach affecting more than 17,000 individuals. The breach, a malicious ransomware attack, occurred in February and locked Midwest Transplant Network out of its files for a brief period before it was able to regain access.

kcur.org/health/2021-05-03/ran

Plus anciens